Skip to main content

Vendor/product archive

emerson / deltav CVEs

Beta · best-effort

15 CVEs tagged to emerson / deltav0 Critical, 7 High, 7 Medium, 1 Low, 0 Unrated.

CVE-2021-44463

Published Jan 28, 2022

Missing DLLs, if replaced by an insider, could allow an attacker to achieve local privilege escalation on the DeltaV Distributed Control System Controllers and Workstations (All v…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2018-19021

Published Jan 25, 2019

A specially crafted script could bypass the authentication of a maintenance port of Emerson DeltaV DCS Versions 11.3.1, 11.3.2, 12.3.1, 13.3.1, 14.3, R5.1, R6 and prior, which may…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-14797

Published Aug 23, 2018

Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 allow a specially crafted DLL file to be placed in the search path and loaded as an internal and valid DLL, which ma…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-14791

Published Aug 23, 2018

Emerson DeltaV DCS versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, R5 may allow non-administrative users to change executable and library files on the affected products.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-14795

Published Aug 21, 2018

DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable due to improper path validation which may allow an attacker to replace executable files.

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-14793

Published Aug 21, 2018

DeltaV Versions 11.3.1, 12.3.1, 13.3.0, 13.3.1, and R5 is vulnerable to a buffer overflow exploit through an open communication port to allow arbitrary code execution.

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-9345

Published Feb 13, 2017

An issue was discovered in Emerson DeltaV Easy Security Management DeltaV V12.3, DeltaV V12.3.1, and DeltaV V13.3. Critical vulnerabilities may allow a local attacker to elevate p…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-2350

Published May 22, 2014

Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attackers to bypass intended access restrictions via a TCP se…

CVSS 2.4 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-2349

Published May 22, 2014

Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attackers to bypass intended access restrictions via a TCP se…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3035

Published Oct 1, 2012

Buffer overflow in Emerson DeltaV 9.3.1 and 10.3 through 11.3.1 allows remote attackers to cause a denial of service (daemon crash) via a long string to an unspecified port.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1